Coordinated Disclosure Program

Security Hall of Fame

Thank you to the independent researchers who reported vulnerabilities under our coordinated disclosure policy and helped keep TrekMail users safe.

22
Researchers
credited
Sep 2026
Latest
credit
90d
Requested
window

Researchers

Listed with each researcher's written consent. Most recent first.

Vikrant
Vikrant
Credited June 2026
Account recovery
SM
Sakshi Modi
Credited May 2026
Email injection

How researchers get listed

Credit is granted at TrekMail's sole discretion, only with the researcher's written consent.

Valid in-scope finding

The report identifies a security vulnerability in an in-scope asset and includes a working proof of concept.

Coordinated disclosure

The researcher coordinated disclosure timing with TrekMail and did not access, modify, or exfiltrate data that does not belong to them.

Written consent to list

The researcher provided the exact display name and any optional profile URL they wish to appear.

Not eligible

Scanner-only output without demonstrated impact, out-of-scope assets, and duplicates of an already-known issue.

To request credit for a previously reported issue, reply on the original support ticket with the display name and optional profile URL you would like shown.

Found a vulnerability?

Sign in to your TrekMail account and open a support ticket labeled "Security / Vulnerability Report". A free account is enough — no paid plan needed to submit a report.

We use necessary technologies to operate and secure TrekMail. Selecting Okay also allows limited analytics and advertising measurement described in our Cookie Policy.

Sign in to TrekMail

Access your dashboard, mailboxes and DNS.

or

12 characters passwords match

or

Reset email sent

If an account exists for this email, we've sent password reset instructions.

By continuing, you agree to TrekMail's Terms and Privacy Policy.